๐จ๐ญ
TheCoon
2026-05-29 20:30:01
(4 months ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-05-27 22:02:10
(4 months ago)
Auto-ban: >3000 req/min op 2026-05-27
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-27 07:26:57
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 03:26:53.685309 2026] [security2:error] [pid 3163:tid 3163] [client 34.129.11.222:58516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.consultantspeakerauthortrainer.com"] [uri "/.git/config"] [unique_id "ahacvdqxm1v7nCv6Aj_PbgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 07:10:59
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 03:10:51.155236 2026] [security2:error] [pid 29619:tid 29619] [client 34.129.11.222:36482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stage-api-global.feaverslane.com"] [uri "/.git/config"] [unique_id "ahaY-7yz33lhigfyW99HwwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-05-27 06:45:50
(4 months ago)
34.129.11.222 - - [27/May/2026:08:45:50 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 ...
show more
34.129.11.222 - - [27/May/2026:08:45:50 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.1.2) Gecko/20090803 Ubuntu/9.04 (jaunty) Shiretoko/3.5.2" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
Anonymous
2026-05-27 06:05:54
(4 months ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-05-27 04:48:42
(4 months ago)
HTTP attack observed: GET /.git/config HTTP/1.1 | status=301 | response_size=237
Brute-Force
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-05-27 04:48:42
(4 months ago)
HTTP attacks observed: GET /.git/config HTTP/1.1 | status=301
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-27 02:20:12
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:20:06.515596 2026] [security2:error] [pid 4368:tid 4368] [client 34.129.11.222:51278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.scrappy.us"] [uri "/.git/config"] [unique_id "ahZU1o3OXNuZkftNiqxn-QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-27 01:13:52
(4 months ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 00:44:16
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:44:11.393226 2026] [security2:error] [pid 7819:tid 7819] [client 34.129.11.222:54436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.zebax.com"] [uri "/.git/config"] [unique_id "ahY-W2LaMMiMk8IPvQiq-AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
NXTwoThou
2026-05-26 23:20:49
(4 months ago)
/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-26 22:55:33
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 18:55:27.269915 2026] [security2:error] [pid 1695:tid 1695] [client 34.129.11.222:58646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.canebrakes.com"] [uri "/.git/config"] [unique_id "ahYk3xK6InFCTe8waJ_7kQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-26 20:50:21
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.11.222 (222.11.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 16:50:14.135580 2026] [security2:error] [pid 25122:tid 25164] [client 34.129.11.222:45526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.arthansl.com"] [uri "/.git/config"] [unique_id "ahYHhv9Tyy9zXpUM-SnXVQAAAEU"]
show less
Brute-Force
Bad Web Bot
Web App Attack